CVE-2025-40019
MEDIUM 5.5EPSS 0.3%
In the Linux kernel, the following vulnerability has been resolved: crypto: essiv - Check ssize for decryption and in-place encryption Move the ssize check to the start in essiv_aead_crypt so that it's also checked for decryption and in-place encryption.
- CVSS v3.1
- 5.5 MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H - EPSS
- 0.27% chance of exploitation in the next 30 days, 19th percentile
- Published
- 2025-10-24
- Updated
- 2026-05-11